KosmX / jneedle

Java malware detection tool
MIT License
66 stars 2 forks source link

Rule specs #13

Open KosmX opened 1 year ago

KosmX commented 1 year ago

Matching rules

Standard way for representing JVM malware signatures.
Rules should be similar to Yara rules (just for JVM application) This means

KosmX commented 1 year ago

1 malware can have multiple rules, 1 rule can have multiple matches and conditions